Indonesia Hit by Android Banking App-Cloning Campaign
The GoldFactory threat group exploits the Android Work Profile feature to deliver the Gigabud Trojan, while Mantax Otax spreads separately.
The Definitive Chronicle of Identity & Access Management
BREACH: Major healthcare provider confirms 2.3M patient records exposed via misconfigured SCIM endpoint
CVE-2026-31847: Critical RCE in FortiAuthenticator - CVSS 9.8 - Patch immediately
BREACH: European fintech platform leaks OAuth tokens affecting 890K users
A critical IDOR in the MemberDash WordPress plugin (versions up to 1.8.5) lets unauthenticated attackers take over any account, including admins, silently.
A missing ownership check in Frontend Admin by DynamiApps lets unauthenticated attackers overwrite any WordPress user's email and trigger a password reset.
A hardcoded password in Lightstar's SmartIT Desktop Manager lets unauthenticated attackers remotely access user hosts with no credentials required.
An unauthenticated attacker can register arbitrary workers in FastChat, hijack model traffic, and probe internal network ports via SSRF.
The new directive requires all Government of Canada systems to implement FIDO2-compliant authentication, phasing out SMS-based MFA.
Misconfigured SCIM provisioning endpoint exposed patient identity data.
Exposed refresh tokens allowed unauthorized access to customer financial accounts.
LDAP injection attack exposed 340K employee records including AD credentials.
Federated SAML assertion replay attack affected 45 university systems.
Automated attack compromised 120K accounts using previously breached credentials.
Unauthenticated remote code execution via crafted RADIUS authentication packet.
Token validation flaw allows authentication bypass in specific OIDC flow configurations.
XML External Entity injection in SAML metadata parser allows SSRF.
Custom policy XML injection allows privilege escalation in B2C tenants.
Session token not rotated after authentication in specific broker flows.
Join thousands of IAM professionals getting the weekly Intelligence Brief every Monday morning.